Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
monkey vulnerabilities and exploits
(subscribe to this query)
320
VMScore
CVE-2013-2183
Monkey HTTP Daemon has local security bypass
Monkey-project Monkey -
505
VMScore
CVE-2002-1663
The Post_Method function in method.c for Monkey HTTP Daemon prior to 0.5.1 allows remote malicious users to cause a denial of service (crash) via a POST request with an invalid or missing Content-Length header value.
Monkey-project Monkey
1 EDB exploit
445
VMScore
CVE-2013-1771
The web server Monkeyd produces a world-readable log (/var/log/monkeyd/master.log) on gentoo.
Monkey-project Monkey -
585
VMScore
CVE-2013-2182
The Mandril security plugin in Monkey HTTP Daemon (monkeyd) prior to 1.5.0 allows remote malicious users to bypass access restrictions via a crafted URI, as demonstrated by an encoded forward slash.
Monkey-project Monkey
1 EDB exploit
418
VMScore
CVE-2012-4442
Monkey HTTP Daemon 0.9.3 retains the supplementary group IDs of the root account during operations with a non-root effective UID, which might allow local users to bypass intended file-read restrictions by leveraging a race condition in a file-permission check.
Monkey-project Monkey 0.9.3
505
VMScore
CVE-2002-2154
Directory traversal vulnerability in Monkey HTTP Daemon 0.1.4 allows remote malicious users to read arbitrary files via .. (dot dot) sequences.
Monkey-project Monkey 0.1.4
1 EDB exploit
668
VMScore
CVE-2013-2159
Monkey HTTP Daemon: broken user name authentication
Monkey-project Monkey 1.2.1
383
VMScore
CVE-2013-2181
Cross-site scripting (XSS) vulnerability in the Directory Listing plugin in Monkey HTTP Daemon (monkeyd) 1.2.2 allows malicious users to inject arbitrary web script or HTML via a file name.
Monkey-project Monkey 1.2.2
435
VMScore
CVE-2002-1852
Cross-site scripting (XSS) vulnerability in Monkey 0.5.0 allows remote malicious users to inject arbitrary web script or HTML via (1) the URL or (2) a parameter to test2.pl.
Monkey-project Monkey 0.5.0
1 EDB exploit
614
VMScore
CVE-2012-5303
Monkey HTTP Daemon 0.9.3 might allow local users to overwrite arbitrary files via a symlink attack on a PID file, as demonstrated by a pathname different from the default /var/run/monkey.pid pathname.
Monkey-project Monkey 0.9.3
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »